What are the responsibilities and job description for the Security Architect position at GSK?
Posted Date: May 5 2022
Are you looking for an opportunity to lead secure digital innovation across a global organization? If so, this is the role for you.
We are pleased to announce a unique and exciting opportunity for an experienced Information Security professional to support GSK's global Security Operations & Incident Response team. This role is an exciting opportunity within GSK Tech Security & Risk (TSR) organization who provide services and expertise to enable a risk based, compliant, efficient, secure and value driven Technology Delivery.
The primary deliverable of the Security Architect will be to provide oversight for the cyber security architecture and engineering portfolio on a global scale. The role involves partnering with the Security Architects performing domain specific design patterns.
The successful candidate will have strong technical & consultative skills as well as relevant experience in IT Security Architecture & Management. It requires leveraging a “defence in depth”, “zero trust” and apply the “theory of least privilege” as guiding principles and actively contributes to GSK Enterprise Architecture Board, leveraging best practices and helping to improve the overall cyber maturity and posture across the enterprise.
This role will report to VP of Security Architecture, Engineering & Consultancy within the Technology, Security & Risk Organization.
Critical to your success and the success of the team include:
- Strong engagement with the key stakeholders in the SecOps & IR teams.
- Strong alignment to Security Architecture & Enterprise Architecture, including Security Engineering.
- Design an effective security infrastructure strategy, prioritizing activity across current and emerging business needs.
- Maximize the impact of infrastructure modernization and growth, in an evolving threat environment.
- Can translate security-related matters into business terms that are clear and understandable to executives.
- Engagement with external partners for collaborative growth and capability development.
To be effective, the SA will need strong partnering behaviors, be highly flexible and proactive, exhibiting outstanding matrix-working behaviors.
This opportunity will be attractive to an individual with a strong track record of influencing either with or without authority, strategic vision and technical accomplishment in information and cyber security.
Responsible for GSK’s global security infrastructure with experience to include and not limited to:
- Capable of developing innovative solutions in a resource constrained environment
- Be on the forefront of new methods, skills, technologies, and requirements in Information Security, including through partnerships with external parties
- Developing security guardrails and visibility that will enable the business to securely accelerate business opportunities through the use of data and analytics
- Exemplary interpersonal skills in a complex matrix environment
- Able to show others how to negotiate complex partner landscape pragmatically and effectively
- Able to engage effectively with external thought leaders, industry partners and other regulatory and government agencies
- Experience within a large enterprise network covering multinational locations, various technology platforms, legacy systems and cloud security challenges in a highly regulated environment
- Experience with overseeing network configuration management, developing metrics for uptime, security posture and health
- Experience with teams responsible for security infrastructure platforms to include encryption, end point solutions, network contextual analyzers, digital and multimedia forensics, network, endpoint, mobile solutions, Data Loss Prevention (DLP)/User Behavior Analytics (UBA)
- Experience with teams and technologies managing firewalls, intrusion prevention systems (IPS), proxy servers, mobile data management platforms (MDM), security information and event management (SIEM & SOAR) tools, DDOS and more.
- Experience supporting strategies to achieve successful insider threat programs, including working with various stakeholders like Privacy, Human Resources and Legal.
- Experience working with the complexities of privacy concerns to include cross border data transfer and country specific considerations of data storage, protection and handling
- Experience developing metrics for performance monitoring, capacity and planning needs
- Support interactions with regulatory agencies and payers including influencing policy and defending assets
Why you?
Basic Qualifications:
We are looking for professionals with these required skills to achieve our goals:
- Bsc. or MBA Degree in Information Management/Computer Science or relevant work experience 10 years’ experience in Information Security / Cyber Security
- 7 years' experience developing, presenting, and implementing architectures
- Extensive Senior stakeholder management and engagement
- Performing in demanding operating environments
- Implementing and updating technology in support of business objectives
- Developing and aligning technology roadmaps to meet business needs
- Driving significant technology-based change programs across international and functional boundaries
Preferred Qualifications:
If you have the following characteristics, it would be a plus:
- Industry certification(s) such as CISSP, GIAC-GSEC, GIAC-GCIP
- Familiarity/experience with Architecture frameworks such as SABSA, TOGAF etc.
- Good communication and presentation skills as evidenced through impactful senior management presentations
- Experience working in Engineering, IT/Comp Sci/ Information Assurance/ Cybersecurity/ Management
- Cloud experience/exposure -- particularly with regard to Microsoft, AWS and Google cloud service offerings
- Effective decision making skills
- Experience with developing budgets and writing business plans
Why GSK?
At GSK, we have already delivered unprecedented change over the past four years, improving R&D, becoming a leader in Consumer Health, strengthening our leadership, and transforming our commercial execution. Now, we’re making the biggest changes we’ve made to our business in over 20 years. We’re on track to separate and create two new companies in 2022: New GSK with a leading portfolio of vaccines and specialty medicines as well as R&D based on immune system and genetics science; and a new world-leading consumer healthcare company of loved and trusted brands.
With new ambition comes new purpose. For New GSK, this is to unite science, talent and technology to get ahead of disease together – all with the clear ambition of delivering human health impact; stronger and more sustainable shareholder returns; and as a new GSK where outstanding people thrive.
Getting ahead means preventing disease as well as treating it. How we do all this is through our people and our culture. A culture that is ambitious for patients – so we deliver what matters better and faster; accountable for impact – with clear ownership of goals and support to succeed; and where we do the right thing. So, if you’re ready to improve the lives of billions, join us at this exciting moment in our journey. Join our challenge to get Ahead Together.
If you require an accommodation or other assistance to apply for a job at GSK, please contact the GSK Service Centre at 1-877-694-7547 (US Toll Free) or 1 801 567 5155 (outside US).
GSK is an Equal Opportunity Employer and, in the US, we adhere to Affirmative Action principles. This ensures that all qualified applicants will receive equal consideration for employment without regard to race, color, national origin, religion, sex, pregnancy, marital status, sexual orientation, gender identity/expression, age, disability, genetic information, military service, covered/protected veteran status or any other federal, state or local protected class.
At GSK, the health and safety of our employees are of paramount importance. As a science-led healthcare company on a mission to get ahead of disease together, we believe that supporting vaccination against COVID-19 is the single best thing we can do in the US to ensure the health and safety of our employees, complementary workers, workplaces, customers, consumers, communities, and the patients we serve.
GSK has made the decision to require all US employees to be fully vaccinated against COVID-19, where allowed by state or local law and where vaccine supply is readily available. The only exceptions to this requirement are employees who are approved for an accommodation for religious, medical or disability-related reasons.
Important notice to Employment businesses/ Agencies
GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.
Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, GSK may be required to capture and report expenses GSK incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure GSK’s compliance to all federal and state US Transparency requirements. For more information, please visit GSK’s Transparency Reporting For the Record site.
Salary : $0